WordPress Enforces Plugin Check and 2FA for New Plugin Submissions – WP Tavern

Security Review Lead Chris Christoff has announced two new changes for the WordPress Plugin Directory, effective from October 1, 2024. These changes aim to enhance plugin directory security and promote best practices among plugin developers. Mandatory Two-Factor Authentication As of October 1, 2024, all plugin owners and committers must enable Two-Factor Authentication (2FA) to submit […]

Continue reading

WordPress.org Introduces New Security Measures for Plugin and Theme Authors – WP Tavern

Starting October 1st, 2024, WordPress.org will roll out new security measures aimed at enhancing the safety of accounts with commit access to plugins and themes. This was announced by the Automattic-sponsored developer Dion Hulse. Mandatory Two-Factor Authentication Beginning next month, WordPress.org will make two-factor authentication (2FA) mandatory for all plugin and theme authors. Authors can […]

Continue reading

Remote Code Execution Vulnerability Patched in WPML WordPress Plugin – WP Tavern

The popular WordPress Multilingual plugin, WPML, which is installed on over 1,000,000 websites, has patched a Remote Code Execution (RCE) vulnerability (CVE-2024-6386) that researchers have classified as “Critical,” with a CVSS score of 9.9. Users are strongly advised to update their websites to the patched version, WPML 4.6.13. Security researcher Mat Rollings (stealthcopter) discovered and […]

Continue reading

Gutenberg 19.1 Introduces Plugin Template Registration API – WP Tavern

Gutenberg 19.1 has arrived, introducing the eagerly anticipated plugin template registration API and updates to image caption styles. This Gutenberg version will be later incorporated into WordPress 6.7. The highlight of this release is the plugin template registration API. It addresses a long-standing issue developers have faced with conflicts between plugins and themes, particularly when […]

Continue reading
1 2 3 5